Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Average Ratings 0 Ratings

Total
ease
features
design
support

No User Reviews. Be the first to provide a review:

Write a Review

Description

Attacks on web applications can hinder vital transactions and compromise sensitive information. The Imperva Web Application Firewall (WAF) meticulously evaluates traffic directed at your applications to thwart these threats and maintain seamless business operations. When faced with a disruptive WAF, organizations often find themselves torn between blocking genuine traffic or having to manually manage the attacks that slip through. To combat this challenge, Imperva Research Labs works diligently to enhance the precision of the WAF in light of evolving threats. With features like automatic policy generation and swift rule updates, security teams are empowered to safely utilize third-party code while aligning with the fast-paced demands of DevOps. Serving as a crucial element of a robust Web Application and API Protection (WAAP) framework, Imperva WAF safeguards all layers of your infrastructure, ensuring that only desired traffic reaches your applications. Our solution stands out in the industry by offering the most effective website protection available—compliant with PCI standards, automated security features that incorporate comprehensive analytics, and enhanced defenses that transcend the OWASP Top 10, ultimately minimizing risks associated with third-party integrations. Thus, your organization can confidently navigate the digital landscape without compromising security.

Description

The recognition of web attacks utilizes a combination of AI and predefined rules, ensuring robust anti-bypass capabilities and maintaining low rates of both false negatives and false positives. This system effectively protects against prevalent web threats, such as those listed in the OWASP top 10, which encompasses issues like SQL injection, unauthorized access, cross-site scripting, and cross-site request forgery, among others. Additionally, users have the option to store essential web content in the cloud, enabling the publication of cached web pages that serve as backups to mitigate the risks associated with web page alterations. The backend infrastructure is safeguarded through a comprehensive strategy that includes concealing servers and applications before an attack occurs, preventing attacks during ongoing incidents, and replacing or concealing sensitive data after an event. Furthermore, the Web Application Firewall (WAF) conducts extensive DNS verification across the nation for the domains provided by customers, allowing it to identify and report any hijacking attempts affecting the protected domain names in different areas, which is crucial for preventing data breaches and financial losses linked to user hijacking on websites. This multifaceted approach not only fortifies security but also enhances user trust in web services.

API Access

Has API Yes 

API Access

Has API No 

Screenshots View All

Screenshots View All

Integrations

Archer Yes 
BMC AMI Data Yes 
Buyer Discovery Yes 
Cloudera Yes 
Gigamon Yes 
IBM Cloud Yes 
Intelligent Management Center Yes 
LogRhythm SIEM Yes 
Microsoft 365 Yes 
Praetorian Chariot Yes 
Proofpoint Cloud App Security Broker (CASB) Yes 
Qualys TruRisk Platform Yes 
Rapid7 Incident Command Yes 
Siemens Opcenter APS Yes 
SolarWinds Access Rights Manager Yes 
Splunk APM Yes 
Tencent Cloud No 
VMware Cloud Yes 
Veracode Yes 
Vormetric Data Security Platform Yes 

Integrations

Archer No 
BMC AMI Data No 
Buyer Discovery No 
Cloudera No 
Gigamon No 
IBM Cloud No 
Intelligent Management Center No 
LogRhythm SIEM No 
Microsoft 365 No 
Praetorian Chariot No 
Proofpoint Cloud App Security Broker (CASB) No 
Qualys TruRisk Platform No 
Rapid7 Incident Command No 
Siemens Opcenter APS No 
SolarWinds Access Rights Manager No 
Splunk APM No 
Tencent Cloud Yes 
VMware Cloud No 
Veracode No 
Vormetric Data Security Platform No 

Pricing Details

No price information available.
Free Trial Yes 
Free Version No 

Pricing Details

No price information available.
Free Trial No 
Free Version No 

Deployment

Web-Based Yes 
On-Premises Yes 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac No 
Linux No 
Chromebook No 

Deployment

Web-Based Yes 
On-Premises No 
iPhone App No 
iPad App No 
Android App No 
Windows No 
Mac No 
Linux No 
Chromebook No 

Customer Support

Business Hours Yes 
Live Rep (24/7) Yes 
Online Support Yes 

Customer Support

Business Hours Yes 
Live Rep (24/7) No 
Online Support Yes 

Types of Training

Training Docs Yes 
Webinars No 
Live Training (Online) Yes 
In Person Yes 

Types of Training

Training Docs Yes 
Webinars No 
Live Training (Online) No 
In Person No 

Vendor Details

Company Name

Imperva

Founded

2002

Country

United States

Website

www.imperva.com/products/web-application-firewall-waf/

Vendor Details

Company Name

Tencent

Founded

2013

Country

China

Website

intl.cloud.tencent.com/product/waf

Product Features

DDoS Protection

DNS Amplification Protection No 
DNS Reflection Protection No 
High Network Capacity No 
Illegitimate Traffic Recognition No 
Infrastructure Protection (Layer 3/Layer 4) No 
Post Attack Analysis No 
Traffic Monitoring No 
Website Protection (Layer 7) No 

Web Application Firewalls (WAF)

Access Control / Permissions No 
Alerts / Notifications No 
Automate and Orchestrate Security No 
Automated Attack Detection No 
DDoS Protection No 
Dashboard No 
IP Reputation Checking No 
Managed Rules No 
OWASP Protection No 
Reporting / Analytics No 
Secure App Delivery No 
Server Cloaking No 
Virtual Patching No 
Zero-Day Attack Prevention No 

Product Features

Web Application Firewalls (WAF)

Access Control / Permissions No 
Alerts / Notifications No 
Automate and Orchestrate Security No 
Automated Attack Detection No 
DDoS Protection No 
Dashboard No 
IP Reputation Checking No 
Managed Rules No 
OWASP Protection No 
Reporting / Analytics No 
Secure App Delivery No 
Server Cloaking No 
Virtual Patching No 
Zero-Day Attack Prevention No 

Alternatives

Alternatives